Internet Worm Information
Discovery Date: 11/14/2003
Origin: Unknown
Length: 23,040 bytes
Type: Internet Worm
Description Modified: 11/17/2003 11:10 AM (PT)
This is a detection for an internet worm that spreads by email, IRC and network shares.
After execution, the worm copies itself to %sysdir% as Explore.exe and eCard.zip. The following registry key is changed to run the virus at startup:
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon "Shell" = "Explorer.exe Explore.exe"
More: http://vil.nai.com/vil/content/v_100824.htm

Chowhound
Comic Vine
GameFAQs
GameSpot
Giant Bomb
TechRepublic